2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-12981 | MEDIUM | 5.4 | 5.2% | Jul 12, 2018 | An issue was discovered on WAGO e!DISPLAY 762-3000 through 762-3003 devices with firmware before FW 02. The vulnerabilit... |
| CVE-2018-12979 | MEDIUM | 6.5 | 7.9% | Jul 12, 2018 | An issue was discovered on WAGO e!DISPLAY 762-3000 through 762-3003 devices with firmware before FW 02. Weak permissions... |
| CVE-2018-0039 | MEDIUM | 6.5 | 1.0% | Jul 11, 2018 | Juniper Networks Contrail Service Orchestration releases prior to 4.0.0 have Grafana service enabled by default with har... |
| CVE-2018-0035 | MEDIUM | 4.4 | 1.3% | Jul 11, 2018 | QFX5200 and QFX10002 devices that have been shipped with Junos OS 15.1X53-D21, 15.1X53-D30, 15.1X53-D31, 15.1X53-D32, 15... |
| CVE-2018-0034 | MEDIUM | 5.3 | 2.1% | Jul 11, 2018 | A Denial of Service vulnerability exists in the Juniper Networks Junos OS JDHCPD daemon which allows an attacker to core... |
| CVE-2018-0031 | MEDIUM | 5.3 | 1.4% | Jul 11, 2018 | Receipt of specially crafted UDP/IP packets over MPLS may be able to bypass a stateless firewall filter. The crafted UDP... |
| CVE-2018-0029 | MEDIUM | 5.7 | 0.6% | Jul 11, 2018 | While experiencing a broadcast storm, placing the fxp0 interface into promiscuous mode via the 'monitor traffic interfac... |
| CVE-2018-0026 | MEDIUM | 4.7 | 1.8% | Jul 11, 2018 | After Junos OS device reboot or upgrade, the stateless firewall filter configuration may not take effect. This issue can... |
| CVE-2018-0025 | MEDIUM | 6.1 | 1.4% | Jul 11, 2018 | When an SRX Series device is configured to use HTTP/HTTPS pass-through authentication services, a client sending authent... |
| CVE-2018-10232 | MEDIUM | 6.5 | 0.6% | Jul 11, 2018 | Cross-site request forgery (CSRF) vulnerability in TOPdesk before 8.05.017 (June 2018 version) and before 5.7.SR9 allows... |
| CVE-2018-3693 | MEDIUM | 5.6 | 8.4% | Jul 10, 2018 | Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of ... |
| CVE-2018-3632 | MEDIUM | 6.7 | 0.4% | Jul 10, 2018 | Memory corruption in Intel Active Management Technology in Intel Converged Security Manageability Engine Firmware 6.x / ... |
| CVE-2018-3629 | MEDIUM | 6.5 | 1.0% | Jul 10, 2018 | Buffer overflow in event handler in Intel Active Management Technology in Intel Converged Security Manageability Engine ... |
| CVE-2018-12462 | MEDIUM | 4.8 | 0.6% | Jul 10, 2018 | NetIQ iManager 3.1.1 addresses potential XSS vulnerabilities. |
| CVE-2018-1116 | MEDIUM | 4.4 | 1.2% | Jul 10, 2018 | A flaw was found in polkit before version 0.116. The implementation of the polkit_backend_interactive_authority_check_au... |
| CVE-2018-10872 | MEDIUM | 6.5 | 0.5% | Jul 10, 2018 | A flaw was found in the way the Linux kernel handled exceptions delivered after a stack switch operation via Mov SS or P... |
| CVE-2018-2432 | MEDIUM | 5.4 | 0.7% | Jul 10, 2018 | SAP BusinessObjects Business Intelligence (BI Launchpad and Central Management Console) versions 4.10, 4.20 and 4.30 all... |
| CVE-2018-10890 | MEDIUM | 4.3 | 2.1% | Jul 10, 2018 | A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7, 3.1.13. It was possible for the core_course_get_categori... |
| CVE-2018-10889 | MEDIUM | 4.3 | 2.1% | Jul 10, 2018 | A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7. No option existed to omit logs from data privacy exports... |
| CVE-2018-1549 | MEDIUM | 5.4 | 0.9% | Jul 10, 2018 | IBM Rational Quality Manager 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to HTTP response splitting attacks. ... |
| CVE-2018-1523 | MEDIUM | 5.4 | 0.7% | Jul 10, 2018 | IBM Rational Quality Manager 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulner... |
| CVE-2018-1492 | MEDIUM | 4.3 | 0.4% | Jul 10, 2018 | IBM Jazz Foundation products could allow a user with physical access to the system to log in as another user due to the ... |
| CVE-2018-1423 | MEDIUM | 4.3 | 1.1% | Jul 10, 2018 | IBM Jazz Foundation products could disclose sensitive information to an authenticated attacker that could be used in fur... |
| CVE-2018-1396 | MEDIUM | 5.4 | 0.6% | Jul 10, 2018 | IBM Rational Quality Manager 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulner... |
| CVE-2018-1521 | MEDIUM | 5.4 | 0.6% | Jul 10, 2018 | IBM Rational Team Concert 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerabi... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now